Package Health

ezsystems/ezpublish-community

It has clear GPL licensing, installation documentation, and a repository that matches the package. Its dependency-heavy CMS distribution also includes install and update hooks, increasing the cost of taking on an obsolete release.

Latest v2014.11.1PackagistPackagist

8%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement supplied. Package-level abandonment is a severe adoption risk for a dependency.

Release historydanger

The latest registry release was published nearly 12 years ago, with no releases in the last 12 months. This strongly indicates that the release line is no longer maintained.

Repo commit activitydanger

There were no commits and no active maintainers in the measured 3-month period. Combined with the archived repository, this confirms that current development has stopped.

Repository archiveddanger

The linked repository is archived, and its last push was nearly 9 years ago. An archived source project is a severe indicator that future maintenance is unavailable.

Lifecycle scriptscaution

The package runs post-install and post-update Composer scripts. These are common for a framework distribution but add execution and maintenance complexity to an already obsolete dependency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

eZ Publish dev-team & eZ Community

Direct Dependencies

DependencyLast ReleaseScore
doctrine/dbal
Version ~2.5@rc
—
—
symfony/symfony
Version ~2.5
—
—
twig/extensions
Version ~1.0
—
—
nelmio/cors-bundle
Version ~1.3
—
—
tedivm/stash-bundle
Version 0.4.*
—
—

Weekly Downloads

Info

Last Published
11 years ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform